USN-1057-1: Linux kernel vulnerabilities
3 February 2011
Multiple vulnerabilities in Linux kernel.
Releases
Packages
- linux-source-2.6.15 - ACPI support modules (udeb)
Details
Dave Chinner discovered that the XFS filesystem did not correctly order
inode lookups when exported by NFS. A remote attacker could exploit this to
read or write disk blocks that had changed file assignment or had become
unlinked, leading to a loss of privacy. (CVE-2010-2943)
Dan Rosenberg discovered that several network ioctls did not clear kernel
memory correctly. A local user could exploit this to read kernel stack
memory, leading to a loss of privacy. (CVE-2010-3297)
Kees Cook and Vasiliy Kulikov discovered that the shm interface did not
clear kernel memory correctly. A local attacker could exploit this to read
kernel stack memory, leading to a loss of privacy. (CVE-2010-4072)
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 6.06
-
linux-image-2.6.15-55-hppa64
-
2.6.15-55.91
-
linux-image-2.6.15-55-mckinley
-
2.6.15-55.91
-
linux-image-2.6.15-55-powerpc-smp
-
2.6.15-55.91
-
linux-image-2.6.15-55-hppa32-smp
-
2.6.15-55.91
-
linux-image-2.6.15-55-686
-
2.6.15-55.91
-
linux-image-2.6.15-55-amd64-k8
-
2.6.15-55.91
-
linux-image-2.6.15-55-amd64-server
-
2.6.15-55.91
-
linux-image-2.6.15-55-386
-
2.6.15-55.91
-
linux-image-2.6.15-55-sparc64-smp
-
2.6.15-55.91
-
linux-image-2.6.15-55-k7
-
2.6.15-55.91
-
linux-image-2.6.15-55-sparc64
-
2.6.15-55.91
-
linux-image-2.6.15-55-server
-
2.6.15-55.91
-
linux-image-2.6.15-55-powerpc64-smp
-
2.6.15-55.91
-
linux-image-2.6.15-55-hppa32
-
2.6.15-55.91
-
linux-image-2.6.15-55-mckinley-smp
-
2.6.15-55.91
-
linux-image-2.6.15-55-server-bigiron
-
2.6.15-55.91
-
linux-image-2.6.15-55-itanium-smp
-
2.6.15-55.91
-
linux-image-2.6.15-55-amd64-xeon
-
2.6.15-55.91
-
linux-image-2.6.15-55-powerpc
-
2.6.15-55.91
-
linux-image-2.6.15-55-amd64-generic
-
2.6.15-55.91
-
linux-image-2.6.15-55-hppa64-smp
-
2.6.15-55.91
-
linux-image-2.6.15-55-itanium
-
2.6.15-55.91
After a standard system update you need to reboot your computer to make
all the necessary changes.
References
Related notices
- USN-1072-1: linux-image-2.6.24-28-mckinley, linux-image-2.6.24-28-powerpc-smp, linux-image-2.6.24-28-sparc64-smp, linux-image-2.6.24-28-lpiacompat, linux-image-2.6.24-28-hppa32, linux-image-2.6.24-28-386, linux-image-2.6.24-28-rt, linux-image-2.6.24-28-hppa64, linux-image-2.6.24-28-openvz, linux-image-2.6.24-28-powerpc64-smp, linux-image-2.6.24-28-virtual, linux-image-2.6.24-28-sparc64, linux-image-2.6.24-28-xen, linux-image-2.6.24-28-generic, linux-image-2.6.24-28-powerpc, linux, linux-image-2.6.24-28-lpia, linux-image-2.6.24-28-server, linux-image-2.6.24-28-itanium
- USN-1074-1: linux-fsl-imx51, linux-image-2.6.31-112-imx51
- USN-1083-1: linux-image-2.6.35-25-generic, linux-image-2.6.35-25-server, linux-image-2.6.35-25-virtual, linux-lts-backport-maverick, linux-image-2.6.35-25-generic-pae
- USN-1041-1: linux-image-2.6.31-22-sparc64-smp, linux-image-2.6.32-27-versatile, linux-image-2.6.32-27-ia64, linux-image-2.6.32-27-powerpc-smp, linux-image-2.6.35-24-powerpc-smp, linux-image-2.6.31-22-sparc64, linux-image-2.6.35-24-versatile, linux-image-2.6.32-27-powerpc, linux-image-2.6.32-27-powerpc64-smp, linux-image-2.6.31-22-server, linux-image-2.6.35-24-powerpc, linux-image-2.6.32-27-preempt, linux-image-2.6.31-22-lpia, linux-image-2.6.31-22-generic-pae, linux-image-2.6.32-27-386, linux-image-2.6.32-27-sparc64, linux-image-2.6.35-24-powerpc64-smp, linux-image-2.6.32-27-virtual, linux-image-2.6.35-24-server, linux-image-2.6.31-22-386, linux-image-2.6.32-27-sparc64-smp, linux-image-2.6.32-311-ec2, linux-image-2.6.35-24-virtual, linux-image-2.6.32-27-generic-pae, linux-image-2.6.35-24-generic, linux-image-2.6.31-307-ec2, linux-image-2.6.35-24-generic-pae, linux-image-2.6.31-22-powerpc64-smp, linux-image-2.6.31-22-ia64, linux, linux-ec2, linux-image-2.6.31-22-powerpc-smp, linux-image-2.6.31-22-virtual, linux-image-2.6.32-27-generic, linux-image-2.6.32-27-lpia, linux-image-2.6.31-22-powerpc, linux-image-2.6.31-22-generic, linux-image-2.6.32-27-server, linux-image-2.6.35-24-omap
- USN-1074-2: linux-fsl-imx51, linux-image-2.6.31-608-imx51
- USN-1093-1: linux-image-2.6.32-416-dove, linux-image-2.6.32-216-dove, linux-mvl-dove
- USN-1202-1: linux-ti-omap4, linux-image-2.6.35-903-omap4
- USN-1119-1: linux-ti-omap4, linux-image-2.6.35-903-omap4